MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 98133fa949f0f24d464278df59b254ea34b2b1035b84efd89b93aa85c5f4d49e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 98133fa949f0f24d464278df59b254ea34b2b1035b84efd89b93aa85c5f4d49e
SHA3-384 hash: 2d13639740855de413816099d0592d0c34ff67a824f06f2715375a0bb35e976f1ca8cb9abea0040a3654ed2fa142faa2
SHA1 hash: ee26be7b09f71c1116e036acc687ae58acc6b62a
MD5 hash: 34c5c49f8244388b8b844adf4cea7d58
humanhash: bulldog-winner-tennis-helium
File name:Q20LS0944.IMG
Download: download sample
File size:1'245'184 bytes
First seen:2020-10-19 06:27:15 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 24576:K86UGJtzfpvVEtTWhZCG6P6COisfPeyBrI:PdP6F1fGy
TLSH C4457C1423885F68E03EA7319860414097F2BC56DB39C55EFDDA2ADE1E32F82C767636
Reporter abuse_ch
Tags:img


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: bashstat.ru
Sending IP: 81.30.192.250
From: Agatha You <pozar@sb.ht.hr>
Subject: RE: Re: Tender No. Q20LSB0944
Attachment: Q20LS0944.IMG (contains "Q20LS0944.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-19 00:05:46 UTC
AV detection:
9 of 48 (18.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

img 98133fa949f0f24d464278df59b254ea34b2b1035b84efd89b93aa85c5f4d49e

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments